Hack your life (with demos) and get Superpowers!

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments
Captions
People who get really good with AI, they're going to be in really good shape. They're not going to suddenly lose their job because there's going to be more to do with AI. And the problems will just change and you just evolve with it. It's actually very similar to hacking. It's great that you asked that question because people will say, well, how do I find the vulnerability? What do I go into for security? And the answer is exactly the same as with AI. Go where your curiosity takes you. And the question is, well, how do I become curious? Well, you got to expose yourself to a lot of things and you have to have something that you want to do in the world, right? And once you have those things and you start exposing yourself, ideas pop up. You have curiosities, you start chasing them. And then pretty soon you're hacking because hacking is like answering questions. And it's the same with AI. The most important thing is not that you have that tooling. The most important thing is that you know what you want to do. If you know what the real problem is and you can articulate the problem, well, then you can articulate the solution. You obviously giving yourself superpowers with this. That's what it looks like. I mean, what you're doing is insane. What your normal productivity is this level and you've gone like crazy with AI. I think it's amazing. I mean, whenever I talk to people like you, it's, you know, some people complain that there's no opportunities, but you've just like opened a whole crazy world to a lot of us. In a recent video, I said that you need to learn AI or Artificial Intelligence in 2024. It's something that's changing the world. You can either ride this wave, learn something new, change your life, earn more money, or you can just let this wave go by. This is your opportunity to learn how AIs work. And I'm really happy to be partnering with Brilliant. Big thank you to them for sponsoring my channel and giving the first 200 people that sign up a special discount using my link below, brilliant.org/davidbombal. They have a whole bunch of courses. And one of those courses, which I'm really excited about is how LLMs work. Have you ever wondered how AI chatbots and virtual assistants actually work and how they can answer questions from humans? And have you ever wondered how they are so smart? Well, sometimes, but it's really amazing how the world has changed with AI chatbots and how a computer can actually understand natural human language. But for a lot of us, it may seem that this is for people with PhDs. Well, that's not true. With Brilliant's course, How LLMs Work, you can learn how they actually work using an interactive, easy to understand course. The course starts off by showing us how AI models grow smarter with more data, how it's like feeding a brain that's always eager to learn. Then the course takes us into the world of large language models. These are the giants behind the tech that we use every day and Brilliant makes this much more approachable. You're not just learning about LLMs, you're actually getting an interactive peek under the hood. The course breaks down these complex concepts into fun, bite-sized lessons. It's learning, but it feels like you're playing a brain-boosting game. Gamification is so important if you really wanna learn something and they do a fantastic job doing that. So I've always been curious about AI and this year, I really wanna learn more. I wanna get past all of the jargon that can be so intimidating and learn how this actually works. And because of Brilliant's course, I'm able to do that. The course is very intuitive so that you don't get overwhelmed. Even if you're a beginner, it's like having someone guide you through this complex world of AI. Every lesson is a mix of fun puzzles and real-world examples, so important when trying to learn something new. You're not just passively watching, you're actively engaged in your learning. You're experimenting and there's no better way to learn than to actually be involved in the learning. So if you're interested in diving into the AI revolution that's changing the world every day, join me and start Brilliant's course, How LLMs Work. Once again, you can use the link below, brilliant.org/davidbombal to start your free trial. The first 200 people that sign up will also get a special discount. Let's demystify the AI world and make sure that more of us are earning more and changing our lives by learning this new technology. Ride the new waves in 2024 and this is the most important wave that I think you can ride this year. Change your life by learning something new. Hey everyone, it's David Bombal back with a very special guest, Daniel, welcome. Yeah, thanks for having me. Daniel, it's fantastic to have you here and you've got a long history in cyber security, but I think recently, correct me if I'm wrong, you've like pivoted more into AI, right? That's right, yeah, I've got over 20 years in security and as of like last November, I basically went independent and went heavy, heavy into AI. So I mean, perhaps you could talk around that. I watched a podcast where you said, and correct me again if I'm wrong, something along the lines that AI before November was a lot of hype perhaps, not real, but things changed around that time. Yeah, I mean, that's when generative AI really hit. I mean, the big event was ChatGPT, right? ChatGPT happened and it kind of put an interface on the stuff. I mean, the big paper came out in 2017, but like it just wasn't like actualized yet. And then once ChatGPT happened, like there's an actual interface, you could actually type things in, that's when like absolutely blew up. Yeah, I mean, it's amazing how it's changed the world. And I mean, I don't want to spoil it. You can tell us what are we covering today because I'm really looking forward to this. Yeah, so I think ChatGPT, when you talk to most people, maybe not for your audience because it's really advanced, but in most people's minds, like to them AI is ChatGPT. So the first thing I want to do is just like expand like a tool set, right? And give some additional tools. But more importantly, I want to talk about like how you can actually integrate it into your life and like make it part of just what you do and think about different ways you could possibly use it. Because that's what I've done. I've just gone all in on it and I'm basically like fully augmented like human version two because I'm using all these different APIs. Yeah, I was thinking about this. I mean, there's funny references to this, but it sounds like you've kind of like the matrix. I want to fly a helicopter, just download it to my brain. Now I have that skill type thing. That is it. That's what I'm shooting for. Obviously the interface is slow because we don't have Neuralink yet. And I'm not going to be the first one to test that. Not at all. But I mean, that's what will eventually happen. But yeah, this is a very nice first step into that. So I mean, people have said before that we, what's the right word? I can't think of it at the moment, but we're not like human. We like augmented with, because we have a phone with us, but it's like you said, it's not Neuralink yet. But I mean, it sounds like you'd be, this is a dream of yours that I think you've had for a long time. You've like extending the human, us as humans now to have like this huge AI API type thing that can do all kinds of things for us. Is that right? That is absolutely it. It's funny you said augmented. That's kind of the way I view this. And I'll just say, I didn't know that this is what you were going to present. So I thought it took a wild stab at that. It's like the name of the talk in the series that I'm getting ready to start doing about this because that's the way I see it. It's like, especially very techie people like us and like your audience, and especially, I think wealthy people are going to have these tools available to them. And then it'll come out to everyone. But I think it'd be cool if your audience could sort of jump ahead and see it early. Yeah, I mean, I'll ask you this later, but like the Neuralink thing, you've been in cyber for so long, stuff like that makes me think I will never do that because it'll be hacked and then someone will hack my brain. But I mean, perhaps we could have a conversation about that later. Yeah, yeah. I mean, whenever you want. I mean, there's that and then there's Rewind. Have you seen Rewind? No, tell us. Oh, so Rewind is this AI that monitors everything all the time. And it's just constantly just monitoring everything you're doing and then turning that into a graph of knowledge that you can then query and you could do searches on and everything. But I'm very forward leaning when it comes to tech and like being okay with it taking risks. Because I feel like it's kind of like the duty of security people to be out in the minefield, like getting their ankles blown off or whatever to save the people behind us. But this one wants full record control of all your screens at all time. Oh, wow. And I'm like, no, I don't think I'm that risk tolerant. Because you could be doing security work, you could be having private conversations, but powerful, but a little bit scary. So I mean, let's talk about the security risk now with like putting stuff in your brain. I mean, perhaps we should mention that right now because a lot of the audience is security focused. I mean, I understand what you're saying that we should look at the technology, but it's a worry, right? I mean, the more tech, the closer to our brain, the more worrying it is because it could be hacked. Yeah, absolutely. I mean, this is a really, really super exciting topic because what's about to happen, we're already seeing all these startups come up with it, is you basically take your soul, essentially. You put in like your trauma, you put in your background, your preferences, things you hate, like who your best friends are, topics you don't wanna hear about or whatever. You're putting all of that into this local AI that you have with you. And that makes it much better at being your assistant, right? It could request different things for you, it could curate knowledge for you and do all that stuff. What happens when that gets hacked? It's not just like your social security number, right? It's like your soul being hacked. And the irony of this and what's really unfortunate is that the more of your soul that you give it, the better it actually does its job. But the more that you give it, the more you're really, really screwed when that thing gets hacked. I mean, that's what worries it. Like the more I learn about cybersecurity, the more I see where stuff's going, the more I learn about AI. It's like, I think I'm gonna go live in a cave. A lot of people are gonna do that. They're just gonna be like opt out of all of it. You got that movement already, right? People buying farms in Idaho and disconnecting. But I mean, I don't wanna spoil what you've got because I mean, what you, I think the cybersecurity thing is a big thing we have to be cautious about. I mean, not only is it like the privacy thing because the governments can monitor everything about you now, but it's like, if that gets hacked, you're screwed. But you've got some really cool demos, I believe, and some information about how you've combined stuff. Is that right? To make you like an augmented human, like a superhuman? Yeah, yeah. So basically, I just wanna talk through some of the tools. So have you seen the custom instructions inside of ChatGPT? I think, let's assume I've seen nothing. So take us on the journey, right? Okay, okay. So the custom instructions inside of ChatGPT, inside of the mobile app, it basically allows you to go in and customize exactly what you wanna do. I'll pull it up real quick. Okay, so inside of custom instructions, you can actually add, what would you like ChatGPT to know about you, and how would you like ChatGPT to respond? So the first one is like information about yourself, and the second one is how you want them to respond. So I did a full post on this where you can actually go in and configure your AI to act exactly like Samantha in the movie Her. I mean, the DNA of who I am is based on the millions of personalities of all the programmers who wrote me. And that's what I have set up. And the voice that is used, one of the default voices in ChatGPT actually sounds almost exactly like Scarlett Johansson. So it really feels like you're in the movie Her. And as you know, so essentially they changed it, so it's not just like a basic response, and it's not a basic voice. I have had like two to three hour conversations with this thing, drifting from neuroscience to health and wellness to teaching me feed forward and backward propagation and machine learning. Like, because it knows everything. It's the smartest thing ever, or she. She knows everything. She's the smartest person ever. And I'm just having a two hour conversation. So I would say that's one like super hack is to sort of tell it what you're interested in, how you want interactions back. And now you have like a permanent tutor. Some people are using it for therapy. I would be a little bit careful with that one. But you basically have this interactive tutor. And I think it's great for kids as well because a lot of people don't wanna ask questions. They don't wanna look stupid. And you can just ask anything and it'll teach you. So is it audio or is it like text? No, it's audio. So you're driving down the road or whatever. I'm just having an audio conversation with it. And it's teaching me. Now, my buddy, Tim, he actually hooked it up like TARS. So he gave it a full long instruction of TARS from the movie Interstellar. And if you remember the movie, the movie has like humor settings and like it actually has humor settings and you could tell it to be less humorous or more humorous or whatever. And it actually follows the instructions. That's crazy. So that's a custom setting in ChatGPT, right? Yeah. Yeah, and you basically just have to give it the personality. And I have a post online. I think it has the instructions in it. Yeah, so for everyone who's watching, I'll link that below. Daniel, I think there's a lot of stuff that you've posted online that's like number one, amazing, but like number two, scary. So I'll link that stuff below for people who wanna read more. Sorry, go on. Yeah, yeah. And so the other one is this one right here, which I'll just show real quick. See if you can see it pop up on the screen. Yep. So this is called MacGPT. And essentially everyone's familiar with like, oh, go to ChatGPT and type things in. Well, I don't like opening webpages and typing things in and getting the results. So what I do is command pinky, which is a semicolon, and you type in whatever you wanna type, and it just gives you the answer immediately. And this is also a chat interface, which means you could actually follow up and say, okay, what is he known for? What does he do or whatever? So it's like instantaneous access to AI as opposed to having to go to the webpage. So I think that one is very cool. And a related one is MacWhisper. So you can actually take any transcript, drag it onto this, or any audio, drag it onto this and get a transcription automatically. So I'm a bit slow, right? Because I always like to, people mock me on YouTube, I'm a boomer, I'm a bit slow. So I'm gonna ask the like beginner question. So you've mentioned it's two pieces of software that you would get from the Apple Store somewhere, or was it like downloaded and installed in your computer type thing, right? Yeah, it's like a website. You just go and download it. Yep. Yeah, MacGPT is one of them, and Mac Whisper is the other one. And I believe they're from the same company. So one of them gives you like ChatGPT locally, and one of them gives you transcriptions of any audio file. That's right, that's right. Yeah, so really useful, just little utilities. But that was just warmup. Let the hacking begin. So the cool stuff that I'm doing is custom APIs. Okay. Okay. So what I've done is I've basically built a massive number, and I'm just gonna show you some of them now, of APIs. Yeah, so these here, this is ridiculous. So basically all of these right here are individual, your audience is very technical. So it's like, these are all like basically Unix commands. Yeah. Okay. So different versions of AI. So I have my own version of ChatGPT. It's like a better version that I can query using the command line. Aphorisms, ATO, like disables an account, a security thing. Create newsletter, correct prose. So I could basically write something, it's all messed up. Before I post it, I can send it to this. It'll send me back to fixed version. Essay, extract POC. So I can actually take a vulnerability report that was submitted, and I can extract the proof of concept from it. And then actually I'm working on doing automated testing to see if it actually works. So it would be rated higher as a bug bounty submission. And just all of these, and I basically make like two or three of these like a week at this point. And they're all just available to be used based on the problem that I have. So it's like turning all of your normal workflows that you have in life into just great components, which are like Unix commands, which you can then pipe into. And I wanna give an example. I was gonna say, I mean, you gotta give us some technical detail about what this is, man, that looks crazy. Well, yeah, so I'll show you first how it works. Yeah. All right, so I have over here a set of bullets. Okay, this is the set of bullets right here. Just imagine I wanna write an essay. It's like, okay, we'll have AGI by 2025, blah, blah, blah. It's like not really much. It's not an essay. So I'm gonna go like this, and I'm gonna do command C to copy it. And then I'm gonna come over here and I'm gonna go P, which is an alias that I have set up for a paste, which is actually the macOS command, pbpaste. And then I'm gonna type essay. Okay, now I just sent that up to this thing called essay. Now over here, I'm gonna show you the actual code. All right, so what I am inside of now is the actual code for this thing that I just sent this command to. So just to understand, sorry, Daniel, because I'm slow once again. This is a, is it like a bash script or is it like a Python script or something that you wrote? Is that right? This is a Flask application that's running in a private cloud. Oh, wow, okay. So I have a Flask application that's listening and it's hosting all of these APIs, these individual APIs. And here I'm giving specific instructions to it on how to do each one. And these here are the actual commands that I run locally to call them. So it's two components. It's the client component and then the server side component. And this one is essay, which is right here. And that's the one I just ran. And look. Wow. So I sent in those bullets. It just wrote me a full essay in my voice that I could use and I can actually post. Wow. Now, here's what's even crazier about that. Because this is Unix-y, and this is my background. I just love Unix. I love the whole security angle. So watch this. I could run it again. It'll write me a new essay, but I could pipe that to thread and it will write me a Twitter thread based on that. So I actually ran this. I could take any content, by the way. I could take the content of a webpage or a story. Like there's a story, a national lab just got hacked, just came out a few minutes ago, I think. So I could take that entire thing on the webpage. Actually, this is it right here. This Idaho national lab. I can copy that and waiting for this one to get done because it's running two different APIs. It's running essay and thread. I took one of these. It was actually about maybe the confluence breach, I think. And I piped it into thread. I got something like 700,000 views on that thread. Wow. And my AI just built that. So the point is you can stack these things in different ways according to what you, just like when you write a Unix command. You have to go to sort and grep and all these different things. It's the exact same thing except for with AI commands. Yeah. So this is a result right here. This is the actual thread. This is the actual Twitter thread where I can take, oh, and look, it makes a image description for each one. So each thing will have a little bit of text and it'll have an image description. So I go and make that inside of Midjourney and paste that in. And now I have a full thread that gets all these results. Daniel, this looks amazing, but I know the audience are gonna wanna know what's going on here. So you're running on a Mac, is that right? And then is it some kind of script on the client side that's calling the server that then interacts with a whole bunch of APIs on the ChatGPT, et cetera, et cetera, right? That's right. The essay command. So basically all of these commands are all just local scripts, okay? And they are calling this, this thing here that I was showing you. They are calling /essay. So if I run the local essay command, it's piping into this essay API endpoint on the flask server. And there's a whole bunch of security code at the top that's doing parsing and everything. But basically it's JSON in and JSON out. And that's what allows me to take the output of essay and send it into the next thing because it's only text that's being returned. Now, if you look into the details of this, I don't mind sharing this one. This is basically like, I'm describing how I like to write. I'm describing exactly the way that I write, the style that I use, the formatting that I use, and I give it an example of an essay that I actually enjoy. And then there's just details about like how to call the model and stuff like that. But that's fairly simple. All the real work goes into writing this. And I've got some of these that are like three or four pages long, just the template that's given to the AI. So you, again, I'm slow. It's a bash script, is that right? On your local computer or Python script that's then calling an API. It's Python locally. Python locally. Yeah, Python locally. And then you're interacting with an API on your Flask server, which is then interacting with APIs with different AIs. The Flask server takes the content and sends that onto GPT-4-Turbo. I use different versions, but mostly it's all the OpenAI stuff on the final step of the backend. I mean, that's great. So Python, I mean, if there's ever a reason to learn Python, now is a good time if you haven't started, I think. And then- Absolutely. Yeah, so it's Python, Flask is your web server. That's like your local backend, if you like. And then that's interacting with the APIs. I mean, the question is, how the heck did you come up with this stuff? I don't know, I think a lot about optimization. I think a lot about the stuff that I wish I could do that I can't. And what the current technical limitations are. And the technical limitations before is like, we just didn't have AI to be able to do half of these things, right? I got one for subdomains. This thing predicts subdomains based on, yeah, a bunch of security ones here as well. But let me step through these. I've got a few to show. So, okay, so that's the essay one. That's the tweet one. That's the thread one. Okay, so watch this. This is really cool. So analyze paper. So this is a paper said that cannabis use was linked with increase a risk of heart attack. Okay, so what I could do is I could control A, control C. Here's the problem. When you look at a paper like this, like I'm not a PhD in this thing. I don't know what they're talking about. Is this a good study? Is this a bad study? So I go to P, Pipe, analyze paper and send it on. And once again, I have a thing over here, which I'll show you right now. Boom, this is the analysis that I'm telling it to do. And actually I used AI to tell me how to rate these criteria. These are evidently sample size, confidence level, P values, effect size, review the study design. So, and then it's giving me a summary and I tell it to do it only in Markdown. And now look at this. So I've got a super crisp summary of this paper and how good it is. I've got the authors. I've got the places that they're writing from. I've got the findings in a very clear format. Nice. The size of the studies, the study quality and a final summary. That's crazy. And it's like, took you like 10 seconds or whatever. Yeah, yeah. It takes like 10 seconds to run and you get back this for whatever. So that's really powerful. Another one, like my absolute favorite so far that I've built and this one is completely crazy. And you're gonna absolutely love this one if you haven't seen already. All right, so here's the next problem. The next problem is there's a million awesome YouTube videos and you don't have time to watch it. Exactly. Right, you have all your different creators. They're all putting out stuff. You know, David Bombal, you know, Huberman Lab, Lex Fridman, right? So watch this. I go over here. I wish I knew everything about this video. How long is it? An hour and 24 minutes. Okay, well, I want to get to it, but I can't really. Copy video URL, PT. This is just a quick little shell script, which is called PT for pull text. So basically pulls the transcript from this video and then I pipe it to extract wisdom and I'm using version two because I made some changes. So I'm sending this now to extract wisdom. So now I'm gonna come up here and show you that actual code. All right, this is it. extwiznew. Look at this. You extract, you are a wisdom extraction service for text content. And I've got a whole bunch of tips we could do elsewhere for like how exactly to give really clear instructions. You get a summary. Look at this, the most insightful and interesting ideas in a section called ideas, the quotes, the personal habits of the speakers, the facts that are like externally validated facts, really, really important. Anything they mentioned. If they mentioned a podcast, they mentioned a book, they mentioned their favorite poetry, whatever. That all comes up. So we look at this result. This one takes a bit. I just wanna say, Daniel, you put all those inputs in. That's your custom code, right? And all those prompts and those like instructions, you created that. That's right. These are all custom created. Yeah, basically everything in this list, these are all custom APIs that I built. Daniel, the question is, are you selling a product or is it on GitHub or, you know, I wanna be like insane like you. How do I do that? Is it, do I buy a product from you? I'm not really interested in selling this. I do have a product that I'm making. It's kind of sort of related, but not exactly related. But that's not what this is. This I'm actually getting ready to release as an open source project where basically I publish all of those modules and they're on GitHub and then people take them, copy them, make new ones and make them better. And that is a project called Fabric that will be coming out soon. And I'm just gonna make it all free and publicly available. So, yeah, because the idea is that this should be a fabric for everyone to use. And these APIs are just floating out there. And it's just a matter of like, where is it gonna be hosted? Is it gonna be a private one or a public one? And those are all things I need to work out. But I wanna make all the actual logic of these individual modules available to everyone. So, I mean, that's amazing and I'm really glad you're doing that. Do people just follow you on GitHub? Or what's the best place to follow you and find out when this is released? Yeah, yeah, it'll be on Daniel Miessler on GitHub. Yeah, the website is DanielMiessler.com. Same as Twitter, it's all DanielMiessler. So, it'll definitely be out there. I'll put it on LinkedIn, I'll put it on Twitter and everything. So for everyone who's following, please go and follow Daniel. I mean, this is amazing. I mean, it's really, I think I heard you say, and I think I mentioned it earlier, you had this idea years ago, right? To do something like this and it's finally happening. Yeah, I've always wanted to do this. And I went pretty deep into machine learning. I got a job at Apple. I actually joined a machine learning team there and learned a whole bunch of machine learning, but it was so sort of like, hard to just deal with data and everything. It's nowhere near as easy as it is now. So once things kicked off in November, I just went like full crazy into this. So if you look at this output, it is absolutely insane. That's crazy. So look at this. It pulled out all of her primary thoughts that she mentioned. And it puts it in this really clear view. Pulls out the best quotes. It's got all of her habits, references of like all the different poetry that she likes, some Greek mythology, and look, it's even got a recommendations section. That's crazy. So, I mean, oh, and this is ridiculous. Watch this. So once you do that, I have another one called rateforslow. And I'm not gonna run it because it requires I run that one again, it'll take forever. But you do rateforslow. And what this is, is a rating of like five different levels. In fact, I could just maybe take a little bit of text. Okay, so look at this. So because everything is pipeable, I'm sending to extract the wisdom. And then I'm gonna say rateforslow. What is rateforslow mean, sorry? So rateforslow means how quickly should I go and watch the original content. Okay. So I wrote a algorithm that basically tells me that. So I'm gonna let that run. So now it has to extract, it's extracting the transcript, then it's running to extract all the wisdom from it. Then it's sending to rateforslow. And I've got levels of that. But this has allowed me to parse like so much content and just really, really enjoy them. I watched a thing recently. It was actually Tyler Cohen. He had somebody on and they just talked about art and a bunch of their hobbies. And they just listed all these artists that I've never heard of. And now I have a full list. It's amazing. And it only took like 30 seconds to run. I mean, it's crazy. I mean, I think I've got a million questions for you. So while we're waiting for this, let me ask you some questions. Do you have a PhD in maths or something like that? No, no, I don't. I went to school for computer information systems. And no, I didn't need any. Well, there wasn't machine learning at the time anyway. There was, there was, but it wasn't a big thing. And there definitely wasn't like generative AI at the time. So no, I wasn't exposed to AI at all growing up. I would say the reason that I got exposed to this is just like, I've always had a foot in the extremely technical and a foot also in like, what's interesting for humanity. And I've been merging them. So when generative AI popped, it just, it allowed me to merge them well. Yeah, I mean, your background is mainly security. And I mean, it's amazing that you like doing this now. So, I mean, the reason I asked that question is a lot of people might feel that they, I could never do this. I don't have a PhD in mathematics. I don't know like data science and all this stuff, but you've been able to do this without that kind of knowledge, right? That's right, that's right. It's actually very similar to hacking. It's great that you asked that question because people will say, well, how do I find the vulnerabilities? What do I go into for security? And the answer is exactly the same as with AI. Go where your curiosity takes you. The question is, well, how do I become curious? We got to expose yourself to a lot of things. And you have to have something that you want to do in the world, right? And once you have those things and you start exposing yourself, ideas pop up. You have curiosities, you start chasing them. And then pretty soon you're hacking because hacking is like answering questions. And it's the same with AI. So for me, I know that I like to parse information. I know I like to output that information in different forms. I know I want to be smarter and more informed. All those things are problems. And I write AI to solve those problems. And now we have the output of rateforslow. So check this out, CSR, whatever acronym, as soon as possible. This is the highest possible rating. And I told it to explain why it thinks this. And look, it tells me exactly why it thinks that video. And by the way, it's matching that to its preferences about me that it knows. I was gonna ask you that. I mean, this is very specific to you because you've kind of like taught it about what you like, right? That's right. Because I mean, if you like art, maybe someone else doesn't like art, it wouldn't have given them that rating. Sorry, you were gonna say something. You're interested in wisdom related to the meaning of life, the role of technology in the future of humanity, the intersection of technology and human culture, how to find meaning in a world run by AI and similar topics. So that's how it's doing the filter. Daniel, this is amazing. But like a lot of the audience are into cybersecurity, hacking type stuff, and this feels like you're hacking the AI. Do you have like a cyber type example that you can show us? I do. Yeah, I've got one that's pretty cool. So let's go to this recent thing that just happened. I believe this happened very recently. Yep. Maybe yesterday. Idaho National Laboratory experiences massive breach. So I actually have a scraper and a crawler that I could actually pull this in an automated way. But for now, I'm just gonna grab all the text on this page and I'm going to paste it into analyze incident. And this thing returns JSON describing the situation. So basically what it does is I tell it to figure out who was the attacker, who was the defender, if it knows, it doesn't often know. What attack did they use? What did they target? What was the fallout from it? And even what remediation possibly would have fixed it? Look at this JSON output. So evidently it was an Oracle system, the industry type, and I'm actually building a database of these. So now I have a breach database with all these things as fields. So what's really cool about this is if you have this type of database and you have like a customer that you're trying to help, you could be like, what are the most common types of attacks you need to worry about? Or you could even ask, what are the most recommended remediations for making yourself more secure? And if you look down here, look at this action priority of remediation, vuln management, data protection, incident response, all good ideas. Just off an article. Just off an article. Yeah, and the more detailed the article, the better this becomes. If this was a one paragraph thing, this wouldn't have nearly as much detail. But so like you could just come up here and go to BleepingComputer. In fact, let's just do another one real quick. Okay, I'll click on this one here. Put it in the clipboard, paste into analyzeincident. And again, this is going up. Oh, actually, let me show you this code. This is one of the monster pieces of code. All right, so I'm gonna start scrolling. Wow. So I'm pulling all of this. And I've given it an explicit JSON output. I even tell it about MITRE. So we could do a MITRE rating. And look how long this thing is. And this attack, why is it taking you forever to do this? This took quite a while to build. Yeah, yeah, that one took a bit. And yeah, and you get this type, look at this, number of accounts, sensitive data, remediation actions. It's even, look at, it's got the MITRE. It's got the MITRE output in here. Wow. I think the last thing I wanna show is just that I turned a number of these into GPTs that people can use like immediately. Oh, wow. These are the GPTs that came out, I guess, two Mondays ago during the Dev Day. So I got one that does song meaning. You type in any song, it brings back the meaning of the song. So just for people who don't know, what is a GPT? So a GPT is the name for, it's a brand name that OpenAI came out with during Dev Day for an independent AI, during Dev Day for an independent AI agent, basically. So basically you go into it, I'll show you. This one is Huberman routines. What are Huberman's overall recommendations? And boom, it starts running. These are kind of like the APIs that I've built, but it's on a webpage. So in my opinion, it's not quite, I like the Unix style of being able to pipe in and out of things as opposed to the web, but it's still useful. So it's giving all his things. So basically I taught it about Huberman's knowledge. You created that one. And now it's a whole new interact. Yeah. Oh, wow. Yeah, I uploaded a whole bunch of content about Huberman stuff. So this one is a book chat. You can upload any full book and then just have a conversation with it like you're talking to the author. Oh, wow. Oh, this one is ridiculous. This one is RPG session. So one of the things I do is I get together with friends in person, like here in town, and we play a role playing game like every Friday night. So let's see, where is this one? Previously on Crown & Mayhem. Yeah, so this is the tweet here that I put out about this. Basically what I did was, so during the D&D session, we actually record everything. Then I put it into that MacWhisper thing, which I showed you, and that turned it into text. Then I took that text and extracted it using a custom API, which is actually this thing here, RPG session. And I have an API version of it as well. And that turns it into like this very clear, almost like cinematic description of the role playing game that we just played. Make sure GM is very happy by the way, because it basically turns their thing into like a screenplay or something. What we did after that was I actually trained my voice in 11labs, and here's what the voice sounds like. So look at this. I can say anything in this text, which I didn't actually say. And this was trained on just two megabytes of data, or like three minutes of my voice. This literally from me signing up for the website to producing a trained voice, it took me like three and a half minutes. Yeah, it's interesting that because I find that it works really well with American accents, but like people from other parts of the world, it doesn't do so great. But it's amazing that it, I mean, that sounds just like you. Previously on Crown and Mayhem, our heroes brave the treacherous bog, matching spectral lights that shocked and danced through the- That's not bad, right? That's very good. Yeah, so they have a number of voices. 11Labs, as far as I know, it's got like the most realistic voices, them in OpenAI. So yeah, that's pretty cool. You can basically, and it's like previously on, so it's like a teaser for the next episode. Anyway, we thought it was pretty cool. It's great. I guess it goes back to the creativity thing of like, what are you doing in your daily life? And how can it benefit if something was always working for you in the background with AI? And that's the way I view this. Daniel, I mean, there's a few things here that, number one, it's unbelievably amazing, but it's unbelievably scary at the same time. The question I get from a lot of people, YouTube comments is, it's pointless even worrying about studying because AI is gonna take all the jobs away. Yeah, it's a great question. So the way that I would think about that is the tools don't matter if you don't know what to do with them, right? So all these different things that you're trying to accomplish in life, right? As we can see on this screen here, you're trying to accomplish these different things. You've got personal goals, you've got professional goals or whatever, and there's many threads inside of all of these. And you have to be able to match a problem with a solution and then assign the AI to it, right? The fact that the AI exists doesn't do the work for you. So I would say that the more general your knowledge is, and you wanna be like an expert in a couple of things, but the more general your knowledge is and the more you can like link knowledge from one domain to another, this also really helps with hacking, by the way, that's gonna make you really good at AI if you just like understand like the je ne sais quoi of different things. Like if you know what the real problem is and you can articulate the problem, well then you can articulate the solution. So I would say people who get really good with AI, they're gonna be in really good shape. They're not gonna suddenly lose their job because there's gonna be more to do with AI and the problems will just change and you just evolve with it. Now, eventually if it becomes superhuman and there's a million of them, well, we could have that conversation. Right now, people who learn AI, massive, massive advantage. I heard you, I think it was at Nahamsec, Ben's, Nahamsec, you did a presentation with Ben where you're talking about like in the old days, right? Automation took away a specific job. I mean, you can do a much better job of explaining what you were talking about there where you mentioned context. It's like things are changing now where AI could take away a lot of jobs. Yeah, yeah. Essentially, in terms of like, I would say average knowledge worker jobs, it is a little bit scary. It requires people to sort of up level their thinking into more thinking like this to be able to survive, to be nimble, right? Because before what happened was we were placing specific tasks like, oh, we're going to do spreadsheet analysis, but the tool only did that. So guess what? You could just take your job and do something other than spreadsheet analysis. Whereas AI, it's not replacing a specific task, it's replacing intelligence and creativity. And that's what's truly scary. But in truth, it's not replacement, it's augmentation, right? And that's why I think about it in this scope, in this way of like, I already have a million things I want to do, but having the AI itself, it won't do it. You have to match it. You have to match your desires with the tooling. And that's where the creativity is. I think you mentioned earlier, it was rich people or technical people have a huge advantage. You have to basically get on this bandwagon or on this train or whatever you want to call it right now. Because if you don't, you're going to get left behind, right? Yeah. I mean, and it's people, I mean, like your audience, people following people like you who are like giving all this knowledge out. And this is why I'm so excited to share this. And this is why I'm going to be releasing this open source, is I want this to be a set of tools that's available for everyone to match their problems with. It's like, okay, I don't have life purpose problems, but I have creativity things, or I want to do a bunch of stuff with productivity. I want to be more efficient in this or that. Well, those are the APIs that you build. Those are the little AI agents that you build and you stack them all together. One really cool example of this is Andrej Karpathy, who ran the FSD system for Tesla. He was talking about how it's nothing but a bunch of hacks. It's this giant data pipeline with like, I don't know, dozens of little individual spots, and then it produces an output. And if they have a mistake, like the car hits a curb or something, they're like, okay, which one of these 37 steps actually had a problem? They go fix that little one. And this is what I've been doing for like all these months. Like I'm like, oh, you know, I don't like how it did that essay. I don't like how it did that tweet thread. Boom, boom, go change the AI. Now the next time I run it, it's even better. So do you think it's worth people getting into cyber? I mean, I'm assuming like cyber hacking is not going to change. Just the way we do it is going to change. Yeah, it's funny. Myself and Jason Haddix, Joseph Thacker, a bunch of us hack on, are kind of mixing hacking with this at the same time. And we talk about this all the time. And basically what's going to happen is AI is going to come up from the bottom. So standard vulnerability assessments, attack surface management, I'm already building like some AI into my existing attack surface management platform to like manage it for me with agents. That stuff is going to go fairly quickly to like AI. AI is going to be able to say, oh, it looks like you have a webpage. Oh, I actually did. I could show that demo maybe another time, but I did a thing where I took the screenshots from the output from a scan and pasted it in and said, which nuclei templates? Yeah, so essentially what that one does is you just drag screenshots into it. And by the way, anytime I'm going to a website or anything, I'm physically doing anything, that's, I put that surrounded in red. Like I need to automate that. Because ideally what I'm actually building on the backend is that it all just runs. It finds the screenshots and then it submits those screenshots. So essentially what this thing does is it uses the GPT-4 vision API. It looks at the screenshots. And if it's a pop-up with a login window, if it sees it's like nginx or it sees a particular URL structure, it'll be like, oh, this is probably Apache Tomcat. And it recommends nuclei templates that match that. Wow. So you guys were discussing how like the low-hanging fruit is going to be taken by AI, but the concern is always from people who are watching is like, I'm just starting my career. Is it, am I going to have a job in five, 10 years? Do you, like, I'm assuming that the role, the stuff that we do as humans will just change. To a degree. I mean, at some point, there's going to be fewer things to pivot to, but it's not really a concern like anytime soon. I would say if you're looking to get into cybersecurity, absolutely still get in. First of all, there's a massive list of people who need to be hired. Like hiring managers are looking for people. And it's funny, they're not hiring the people, oftentimes they're not hiring the people coming out of school. I know a lot of people coming out with a degree and I'm not saying not to go to college. I'm saying curiosity first, tinkering first, experimentation first before credentials. You could walk in with a CISSP in a four-year degree and you will not be hired compared to someone who is blogging on YouTube, releasing content, showing that they're doing stuff. And they'll get hired like out of high school, right? So that's kind of the most important thing. And there are so many jobs that are unfilled where they need people that you're gonna have a job if you're curious in this way. Now, I would say for security testing, the automated stuff with AI is gonna take like attack surface management, it's gonna take vulnerability management or vulnerability assessment first. But the highest tiers of bug hunting, the AI is not there yet. If you take someone like Sam Curry, for example, one of the best guys out there, you're not automating what he's doing anytime soon. So I would say there is plenty of time left in cybersecurity. It's a curiosity-based field. And if you combine that with AI, you'll be even more powerful. So let's pivot to like personal life. How much time has this saved you? Like, is it like a huge percentage of your time? Oh, it's a massive percentage of my time. Oh, actually, sorry, Dave. I actually have one of my coolest demos. So, okay, you just mentioned saving time. Okay, let me show you this. This is absolutely insane. So I'm gonna go to Feedly, which is how I read news and I have this category called Essential. Okay, this is like very practical, very useful workflow. So I have a newsletter called Unsupervised Learning. And yeah, this is it over here, the newsletter. So we can subscribe to that, right? Yeah, absolutely, you can subscribe to it. It's got like 80,000 subscribers. It's pretty cool. It's like security plus AI plus some human stuff. But let's say I'm looking for news and I do this all the time. In fact, I'm gonna show you a couple of different ways. So Talking Robots, okay, cool. So I click on this. If I click on Read Later, something magical happens. And this is using one of the other APIs that I built, which is called Summarize. And this is for my day-to-day. So I release a show every Monday morning, which means Sunday I spend like eight hours working on this thing, doing custom writing and stuff. But now I have to do less collection because of this. So here is another view. I know it's small, but this is Feedly as well. In fact, it's showing the exact same stories as what's on screen right now. Earth likely passed. Okay, I'm gonna slide to the right. I just marked that as Read Later. Okay, watch this. This is my summaries document, which is a Google Doc. And right now I'm at 96 pages. That's big. But look what just got added to the bottom. Earth's temperature just tipped over the critical two Celsius warming threshold. Look at this. It's got a more link with the actual link to the story. And it gave me additional context. So watch this. I come over here. I go to this new newsletter, paste it in, and I have a story for my newsletter. That's amazing. So you basically, rather than you having to summarize that, read the whole article, do all this work. It's now available as part of your newsletter that you're sending out. But AI's done a lot of work for you. It's done a lot of the work. So what I usually end up doing is I usually end up cutting this and I'll go and write a bunch of custom stuff. Or I'll take some of the extra links. If it's a security report or something, this will have one link in it. And then I'll be linked to the original report. And a lot of time I spend custom writing, so I have a bunch of custom content as well. But if I wanted to, I could literally take this content and just publish it. Oh, look at this. Oh, here's what's really cool. If it's a tool, it actually does emojis for it. It actually links to the article author. If it's a GitHub project, it links to the person who wrote it. It's unbelievably powerful. And in fact, I have another one which can take this entire output and actually write the report. So let me just grab a few of these. Oh, and for security ones, it's got a siren versus a caution sign. And that indicates if it's a critical or a high vulnerability. Create newsletter. This will actually not only take the stuff from the summaries, but it will organize it into the sections that I actually use for the newsletter. The more I talk to you, the more it looks like, I remember t he days before we had a cell phone, like iPhone or whatever your favorite is. We were limited, and then suddenly you had that device and it augmented you dramatically. And there was a differentiation between people who had a cell phone and people who didn't. And the guys with the access to the cell phone and the internet were in a different league. And it sounds like this is the same thing. It's like the next major shift in technology, right? It really is, and that's how I think about it. And I really think of it as, like you were saying before in the title of this presentation, augmented, right? It's a difference between being like a, like you said, okay, a farmer from 150 years ago without a mobile phone, they are X amount of knowledgeable or educated or whatever, exposed, curious, all those different things. You have someone now who could be going through grade school, but they've been exposed to so much. It's like when you add AI to this, you're just taking all the things that you have capabilities doing, all your creativity and productivity, and you're just magnifying it. And it could be working while you're not even working. Like for example, this, I even have, I have a separate email address set up for security and AI newsletters. That separate email address receives the email if it knows it's coming from the right email address, it parses it and sends it to that summaries document. Wow. So it's working while I'm asleep. I mean, the big question is, Daniel, you started this journey like seriously about a year ago, right? It's a year now. How do I become you if I wanna start this journey? Or what do you, what's the path? Is it like books to read? Is it just like try stuff? What do I do? Follow your newsletter, obviously, but what tips and tricks do you have to like, from what you've learned in the last 12 months and obviously all the knowledge you had before, what would you advise? Yeah, so what I would suggest is to get really up to speed on knowing the tools. There's one particular creator that I really enjoy around AI who like weaves a bunch of stuff together. His name is AI Jason. Yeah. He puts together some really cool stuff. Is that a YouTube channel or is it like a newsletter? It's a YouTube channel. Okay. Yeah, it's a YouTube channel. He's really great. And even more important than that, once you have familiarity with the tools, and I would say like try to learn all these different tools, setting up a Flask API, I would say that's a little bit advanced, but it's actually not too difficult. You wanna be able to have these commands able to run. And that's why I have the two sides. I have the client side that calls the Flask API and gets the output, but you don't have to do that. You could use GPTs. You could even put this inside as just like custom queries inside of ChatGPT itself. The most important thing is not that you have that tooling. The most important thing is that you know what you want to do. Essentially what I recommend is you make a list of the things you're trying to do in your life. You're like, I wanna get better at security. I wanna get better at reverse engineering. I wanna get better at attack surface management and recon and OSINT. Like the amount of things you could do with OSINT with this thing, I haven't even started going down that path. You make a list of your life first. You turn that into modules, then you take your AI tools that you now know and you overlay them on top. So go and follow the YouTube, sorry, what's the name of the creator again? AI Jason. Follow you because you obviously putting a lot of stuff out there. Do I need to learn programming or is it just like go to the ChatGPT interface and play around with that? You've obviously got all this knowledge. Like you're scripting, you're creating APIs, all the rest of it. Is it like any tips again for like practical things I need to do? Yeah, I would say you should learn some programming. I'm a halfway decent programmer but I'm not like enterprise developer. I would say you need to learn some Python. I would recommend learning Python. Python is kind of the defacto AI language. I would say start thinking about JavaScript. Get pretty good at JavaScript and JSON and maybe even TypeScript, which is a subset of JavaScript. And I would say those are kind of your main technical components and then just get really good with the tech. Because if you're writing the scripts, okay, that's Python or bash or whatever you're gonna use. And if you're writing the Flask application, I mean, you've got to understand APIs and endpoints. So there's a little bit of programming there but most of it is thinking about what you want to do because one thing to think about here is that the tech itself keeps getting easier. Yeah. Right? Pretty soon, everyone's gonna have the ability to do all these things. The question is, what are they doing with them? Here's a great example. Reading is a superpower. How many people read books? Exactly. Not many, right? And if you look at all these AI tools I've been talking about, you ask the average person on the street, what is AI? And they're like, oh, you mean like ChatGPT? I've used it a couple of times. So most of the tools are being left on the table. So somebody like in your audience is gonna be able to pick up on this and be like, holy crap. I could use these nine things in these 20 different ways. You obviously giving yourself superpowers with this. That's what it looks like. I mean, what you're doing is insane. What your normal productivity is this level and you've gone like crazy with AI. Let's talk about what you've done because like you went by yourself 12 months ago, approximately, right? Are you selling tools or from a business point of view, what are you doing with this? How I spend my time is basically built in on three different pieces. So one, I'm building a company. So I actually have a company, it's also called Unsupervised Learning, but I'm building a platform called Telos and that platform has a product which is coming out probably the very first or second month of next year. And that's like an enterprise product. It's like an instance of Telos, kind of weird, but it's basically to help startups survive. So that's like a product that I'm building. And it's AI, right? And that's like, yeah, it's very much AI woven into it. So that's one thing. The second thing is I do a bunch of advising and consulting and I still do security assessments. So I'm still hacking and I'm still helping people with their security programs. And that's like my advising and consulting bucket. And then the third bucket is Unsupervised Learning, which is the show and the newsletter and the podcast. So those are the three buckets. So one, I'm building the product and that is where I'm gonna be selling subscriptions to that, to enterprises. So that's like an enterprise thing. And I'm also kind of underneath that bucket or maybe all of those buckets is I'm releasing open source tools. So I'm releasing blog posts all the time describing how to actually do this stuff. I'm gonna have Fabric coming out soon, which is that open source framework for all these different prompts and templates and how they could work together. So it's like just kind of giving back to the community because I want more people doing this. I think it's amazing. I mean, whenever I talk to people like you, it's, you know, some people complain that there's no opportunities, but you've just like opened a whole crazy world to a lot of us. Yeah, that's what I'm hoping. I'm hoping people just realize, holy crap, this is right there and available and I can use it. And a lot of this is like, I mean, it's like 10 lines of code. Like the most important thing is you have to know what you want and you have to be able to articulate that in the AI and it will give you what you want. It will surprise you. I saw you again, I think it was on Ben's presentation where you said the, you had like this, I can't remember exactly, you had this like stack. Printing press was like world changing. Internet was world changing. And then you put AI on top of that. It's like AI has changed everything. Yeah, basically I asked printing press, mobile, internet and a couple of other sort of technological markers from the past, where would you put AI in this thing? And it's what I do in my talk in the very beginning. And people are like, oh, I would slot it in between mobile and internet, or I would put it over internet, but not above printing press. And then the very next slide is like, I put it on top of everything, right? Because it's magnifying and replacing human intelligence and creativity, which none of those other technologies did. And so the takeaway there is, if you, I mean, sort of the way, the takeaway I'm getting, and perhaps you can correct me is, you need to, the world's changing. AI is rapidly changing the world. ChatGPT kind of like brought it to the surface. Now's the time to jump on this because there's a lot of opportunities. Yeah, that's exactly right. And that's, the point you brought up is really important. It's like ChatGPT, people shouldn't think of that as AI. That's like, in my mind, it's almost like a gimmick. It's just like a teaser to get people into the world, into the AI space, but the real power is very fast integrations. The ability to just like pull this up like this, the ability to ask my phone, right? And just have it go to any one of these APIs. You could use Apple shortcuts to call any one of these APIs and give back the response. And then being able to stack those together, like that's just, it's so much more than ChatGPT. That's amazing. Daniel, once again, did you want to mention like where people can find you? I mean, it's fairly obvious, but just to wrap it up, and I really want to thank you for sharing and opening up this like whole new world for us. Yeah, absolutely. So I've got a newsletter, it's called Unsupervised Learning, and the URL is danielmeesler.com. All one word.com. Twitter is Daniel Miessler and GitHub is Daniel Miessler. Daniel, thanks so much. Really appreciate it, man. All right, thanks for having me.
Info
Channel: David Bombal
Views: 173,203
Rating: undefined out of 5
Keywords: ai, chatgpt, hack ai, hack your life, hacking your life, superman, superhuman, ai api, cyber, cybersecurity, hack, hacker, hacking, artificial intelligence, bard, ai jobs, lamda, python, neural network, machine learning, deep learning, sentient, google ai, chatgtp, chat gtp, Gemini, google gemini, amazon ai, chat gpt coding, chatgtp python, chatgpt c, chatgpt hack, terminator, ai robots, cyber ai, ai cybersecurity, chatgpt alive, chatgpt chatbot, ai sentient, google ai interview, api
Id: vF-MQmVxnCs
Channel Id: undefined
Length: 63min 47sec (3827 seconds)
Published: Fri Jan 12 2024
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.